/
getTargetHttpsProxy.go
219 lines (185 loc) · 18.7 KB
/
getTargetHttpsProxy.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
// Code generated by the Pulumi SDK Generator DO NOT EDIT.
// *** WARNING: Do not edit by hand unless you're certain you know what you are doing! ***
package alpha
import (
"context"
"reflect"
"github.com/pulumi/pulumi-google-native/sdk/go/google/internal"
"github.com/pulumi/pulumi/sdk/v3/go/pulumi"
)
// Returns the specified TargetHttpsProxy resource.
func LookupTargetHttpsProxy(ctx *pulumi.Context, args *LookupTargetHttpsProxyArgs, opts ...pulumi.InvokeOption) (*LookupTargetHttpsProxyResult, error) {
opts = internal.PkgInvokeDefaultOpts(opts)
var rv LookupTargetHttpsProxyResult
err := ctx.Invoke("google-native:compute/alpha:getTargetHttpsProxy", args, &rv, opts...)
if err != nil {
return nil, err
}
return &rv, nil
}
type LookupTargetHttpsProxyArgs struct {
Project *string `pulumi:"project"`
TargetHttpsProxy string `pulumi:"targetHttpsProxy"`
}
type LookupTargetHttpsProxyResult struct {
// [Deprecated] Use serverTlsPolicy instead.
//
// Deprecated: [Deprecated] Use serverTlsPolicy instead.
Authentication string `pulumi:"authentication"`
// [Deprecated] Use authorizationPolicy instead.
//
// Deprecated: [Deprecated] Use authorizationPolicy instead.
Authorization string `pulumi:"authorization"`
// Optional. A URL referring to a networksecurity.AuthorizationPolicy resource that describes how the proxy should authorize inbound traffic. If left blank, access will not be restricted by an authorization policy. Refer to the AuthorizationPolicy resource for additional details. authorizationPolicy only applies to a global TargetHttpsProxy attached to globalForwardingRules with the loadBalancingScheme set to INTERNAL_SELF_MANAGED. Note: This field currently has no impact.
AuthorizationPolicy string `pulumi:"authorizationPolicy"`
// URL of a certificate map that identifies a certificate map associated with the given target proxy. This field can only be set for global target proxies. If set, sslCertificates will be ignored. Accepted format is //certificatemanager.googleapis.com/projects/{project }/locations/{location}/certificateMaps/{resourceName}.
CertificateMap string `pulumi:"certificateMap"`
// Creation timestamp in RFC3339 text format.
CreationTimestamp string `pulumi:"creationTimestamp"`
// An optional description of this resource. Provide this property when you create the resource.
Description string `pulumi:"description"`
// Fingerprint of this resource. A hash of the contents stored in this object. This field is used in optimistic locking. This field will be ignored when inserting a TargetHttpsProxy. An up-to-date fingerprint must be provided in order to patch the TargetHttpsProxy; otherwise, the request will fail with error 412 conditionNotMet. To see the latest fingerprint, make a get() request to retrieve the TargetHttpsProxy.
Fingerprint string `pulumi:"fingerprint"`
// URLs to networkservices.HttpFilter resources enabled for xDS clients using this configuration. For example, https://networkservices.googleapis.com/beta/projects/project/locations/ locationhttpFilters/httpFilter Only filters that handle outbound connection and stream events may be specified. These filters work in conjunction with a default set of HTTP filters that may already be configured by Traffic Director. Traffic Director will determine the final location of these filters within xDS configuration based on the name of the HTTP filter. If Traffic Director positions multiple filters at the same location, those filters will be in the same order as specified in this list. httpFilters only applies for loadbalancers with loadBalancingScheme set to INTERNAL_SELF_MANAGED. See ForwardingRule for more details.
HttpFilters []string `pulumi:"httpFilters"`
// Specifies how long to keep a connection open, after completing a response, while there is no matching traffic (in seconds). If an HTTP keep-alive is not specified, a default value (610 seconds) will be used. For global external Application Load Balancers, the minimum allowed value is 5 seconds and the maximum allowed value is 1200 seconds. For classic Application Load Balancers, this option is not supported.
HttpKeepAliveTimeoutSec int `pulumi:"httpKeepAliveTimeoutSec"`
// Type of resource. Always compute#targetHttpsProxy for target HTTPS proxies.
Kind string `pulumi:"kind"`
// Name of the resource. Provided by the client when the resource is created. The name must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z]([-a-z0-9]*[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash.
Name string `pulumi:"name"`
// This field only applies when the forwarding rule that references this target proxy has a loadBalancingScheme set to INTERNAL_SELF_MANAGED. When this field is set to true, Envoy proxies set up inbound traffic interception and bind to the IP address and port specified in the forwarding rule. This is generally useful when using Traffic Director to configure Envoy as a gateway or middle proxy (in other words, not a sidecar proxy). The Envoy proxy listens for inbound requests and handles requests when it receives them. The default is false.
ProxyBind bool `pulumi:"proxyBind"`
// Specifies the QUIC override policy for this TargetHttpsProxy resource. This setting determines whether the load balancer attempts to negotiate QUIC with clients. You can specify NONE, ENABLE, or DISABLE. - When quic-override is set to NONE, Google manages whether QUIC is used. - When quic-override is set to ENABLE, the load balancer uses QUIC when possible. - When quic-override is set to DISABLE, the load balancer doesn't use QUIC. - If the quic-override flag is not specified, NONE is implied.
QuicOverride string `pulumi:"quicOverride"`
// URL of the region where the regional TargetHttpsProxy resides. This field is not applicable to global TargetHttpsProxies.
Region string `pulumi:"region"`
// Server-defined URL for the resource.
SelfLink string `pulumi:"selfLink"`
// Server-defined URL for this resource with the resource id.
SelfLinkWithId string `pulumi:"selfLinkWithId"`
// Optional. A URL referring to a networksecurity.ServerTlsPolicy resource that describes how the proxy should authenticate inbound traffic. serverTlsPolicy only applies to a global TargetHttpsProxy attached to globalForwardingRules with the loadBalancingScheme set to INTERNAL_SELF_MANAGED or EXTERNAL or EXTERNAL_MANAGED. For details which ServerTlsPolicy resources are accepted with INTERNAL_SELF_MANAGED and which with EXTERNAL, EXTERNAL_MANAGED loadBalancingScheme consult ServerTlsPolicy documentation. If left blank, communications are not encrypted.
ServerTlsPolicy string `pulumi:"serverTlsPolicy"`
// URLs to SslCertificate resources that are used to authenticate connections between users and the load balancer. At least one SSL certificate must be specified. Currently, you may specify up to 15 SSL certificates. sslCertificates do not apply when the load balancing scheme is set to INTERNAL_SELF_MANAGED.
SslCertificates []string `pulumi:"sslCertificates"`
// URL of SslPolicy resource that will be associated with the TargetHttpsProxy resource. If not set, the TargetHttpsProxy resource has no SSL policy configured.
SslPolicy string `pulumi:"sslPolicy"`
// A fully-qualified or valid partial URL to the UrlMap resource that defines the mapping from URL to the BackendService. For example, the following are all valid URLs for specifying a URL map: - https://www.googleapis.compute/v1/projects/project/global/urlMaps/ url-map - projects/project/global/urlMaps/url-map - global/urlMaps/url-map
UrlMap string `pulumi:"urlMap"`
}
func LookupTargetHttpsProxyOutput(ctx *pulumi.Context, args LookupTargetHttpsProxyOutputArgs, opts ...pulumi.InvokeOption) LookupTargetHttpsProxyResultOutput {
return pulumi.ToOutputWithContext(context.Background(), args).
ApplyT(func(v interface{}) (LookupTargetHttpsProxyResult, error) {
args := v.(LookupTargetHttpsProxyArgs)
r, err := LookupTargetHttpsProxy(ctx, &args, opts...)
var s LookupTargetHttpsProxyResult
if r != nil {
s = *r
}
return s, err
}).(LookupTargetHttpsProxyResultOutput)
}
type LookupTargetHttpsProxyOutputArgs struct {
Project pulumi.StringPtrInput `pulumi:"project"`
TargetHttpsProxy pulumi.StringInput `pulumi:"targetHttpsProxy"`
}
func (LookupTargetHttpsProxyOutputArgs) ElementType() reflect.Type {
return reflect.TypeOf((*LookupTargetHttpsProxyArgs)(nil)).Elem()
}
type LookupTargetHttpsProxyResultOutput struct{ *pulumi.OutputState }
func (LookupTargetHttpsProxyResultOutput) ElementType() reflect.Type {
return reflect.TypeOf((*LookupTargetHttpsProxyResult)(nil)).Elem()
}
func (o LookupTargetHttpsProxyResultOutput) ToLookupTargetHttpsProxyResultOutput() LookupTargetHttpsProxyResultOutput {
return o
}
func (o LookupTargetHttpsProxyResultOutput) ToLookupTargetHttpsProxyResultOutputWithContext(ctx context.Context) LookupTargetHttpsProxyResultOutput {
return o
}
// [Deprecated] Use serverTlsPolicy instead.
//
// Deprecated: [Deprecated] Use serverTlsPolicy instead.
func (o LookupTargetHttpsProxyResultOutput) Authentication() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Authentication }).(pulumi.StringOutput)
}
// [Deprecated] Use authorizationPolicy instead.
//
// Deprecated: [Deprecated] Use authorizationPolicy instead.
func (o LookupTargetHttpsProxyResultOutput) Authorization() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Authorization }).(pulumi.StringOutput)
}
// Optional. A URL referring to a networksecurity.AuthorizationPolicy resource that describes how the proxy should authorize inbound traffic. If left blank, access will not be restricted by an authorization policy. Refer to the AuthorizationPolicy resource for additional details. authorizationPolicy only applies to a global TargetHttpsProxy attached to globalForwardingRules with the loadBalancingScheme set to INTERNAL_SELF_MANAGED. Note: This field currently has no impact.
func (o LookupTargetHttpsProxyResultOutput) AuthorizationPolicy() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.AuthorizationPolicy }).(pulumi.StringOutput)
}
// URL of a certificate map that identifies a certificate map associated with the given target proxy. This field can only be set for global target proxies. If set, sslCertificates will be ignored. Accepted format is //certificatemanager.googleapis.com/projects/{project }/locations/{location}/certificateMaps/{resourceName}.
func (o LookupTargetHttpsProxyResultOutput) CertificateMap() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.CertificateMap }).(pulumi.StringOutput)
}
// Creation timestamp in RFC3339 text format.
func (o LookupTargetHttpsProxyResultOutput) CreationTimestamp() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.CreationTimestamp }).(pulumi.StringOutput)
}
// An optional description of this resource. Provide this property when you create the resource.
func (o LookupTargetHttpsProxyResultOutput) Description() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Description }).(pulumi.StringOutput)
}
// Fingerprint of this resource. A hash of the contents stored in this object. This field is used in optimistic locking. This field will be ignored when inserting a TargetHttpsProxy. An up-to-date fingerprint must be provided in order to patch the TargetHttpsProxy; otherwise, the request will fail with error 412 conditionNotMet. To see the latest fingerprint, make a get() request to retrieve the TargetHttpsProxy.
func (o LookupTargetHttpsProxyResultOutput) Fingerprint() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Fingerprint }).(pulumi.StringOutput)
}
// URLs to networkservices.HttpFilter resources enabled for xDS clients using this configuration. For example, https://networkservices.googleapis.com/beta/projects/project/locations/ locationhttpFilters/httpFilter Only filters that handle outbound connection and stream events may be specified. These filters work in conjunction with a default set of HTTP filters that may already be configured by Traffic Director. Traffic Director will determine the final location of these filters within xDS configuration based on the name of the HTTP filter. If Traffic Director positions multiple filters at the same location, those filters will be in the same order as specified in this list. httpFilters only applies for loadbalancers with loadBalancingScheme set to INTERNAL_SELF_MANAGED. See ForwardingRule for more details.
func (o LookupTargetHttpsProxyResultOutput) HttpFilters() pulumi.StringArrayOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) []string { return v.HttpFilters }).(pulumi.StringArrayOutput)
}
// Specifies how long to keep a connection open, after completing a response, while there is no matching traffic (in seconds). If an HTTP keep-alive is not specified, a default value (610 seconds) will be used. For global external Application Load Balancers, the minimum allowed value is 5 seconds and the maximum allowed value is 1200 seconds. For classic Application Load Balancers, this option is not supported.
func (o LookupTargetHttpsProxyResultOutput) HttpKeepAliveTimeoutSec() pulumi.IntOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) int { return v.HttpKeepAliveTimeoutSec }).(pulumi.IntOutput)
}
// Type of resource. Always compute#targetHttpsProxy for target HTTPS proxies.
func (o LookupTargetHttpsProxyResultOutput) Kind() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Kind }).(pulumi.StringOutput)
}
// Name of the resource. Provided by the client when the resource is created. The name must be 1-63 characters long, and comply with RFC1035. Specifically, the name must be 1-63 characters long and match the regular expression `[a-z]([-a-z0-9]*[a-z0-9])?` which means the first character must be a lowercase letter, and all following characters must be a dash, lowercase letter, or digit, except the last character, which cannot be a dash.
func (o LookupTargetHttpsProxyResultOutput) Name() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Name }).(pulumi.StringOutput)
}
// This field only applies when the forwarding rule that references this target proxy has a loadBalancingScheme set to INTERNAL_SELF_MANAGED. When this field is set to true, Envoy proxies set up inbound traffic interception and bind to the IP address and port specified in the forwarding rule. This is generally useful when using Traffic Director to configure Envoy as a gateway or middle proxy (in other words, not a sidecar proxy). The Envoy proxy listens for inbound requests and handles requests when it receives them. The default is false.
func (o LookupTargetHttpsProxyResultOutput) ProxyBind() pulumi.BoolOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) bool { return v.ProxyBind }).(pulumi.BoolOutput)
}
// Specifies the QUIC override policy for this TargetHttpsProxy resource. This setting determines whether the load balancer attempts to negotiate QUIC with clients. You can specify NONE, ENABLE, or DISABLE. - When quic-override is set to NONE, Google manages whether QUIC is used. - When quic-override is set to ENABLE, the load balancer uses QUIC when possible. - When quic-override is set to DISABLE, the load balancer doesn't use QUIC. - If the quic-override flag is not specified, NONE is implied.
func (o LookupTargetHttpsProxyResultOutput) QuicOverride() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.QuicOverride }).(pulumi.StringOutput)
}
// URL of the region where the regional TargetHttpsProxy resides. This field is not applicable to global TargetHttpsProxies.
func (o LookupTargetHttpsProxyResultOutput) Region() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.Region }).(pulumi.StringOutput)
}
// Server-defined URL for the resource.
func (o LookupTargetHttpsProxyResultOutput) SelfLink() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.SelfLink }).(pulumi.StringOutput)
}
// Server-defined URL for this resource with the resource id.
func (o LookupTargetHttpsProxyResultOutput) SelfLinkWithId() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.SelfLinkWithId }).(pulumi.StringOutput)
}
// Optional. A URL referring to a networksecurity.ServerTlsPolicy resource that describes how the proxy should authenticate inbound traffic. serverTlsPolicy only applies to a global TargetHttpsProxy attached to globalForwardingRules with the loadBalancingScheme set to INTERNAL_SELF_MANAGED or EXTERNAL or EXTERNAL_MANAGED. For details which ServerTlsPolicy resources are accepted with INTERNAL_SELF_MANAGED and which with EXTERNAL, EXTERNAL_MANAGED loadBalancingScheme consult ServerTlsPolicy documentation. If left blank, communications are not encrypted.
func (o LookupTargetHttpsProxyResultOutput) ServerTlsPolicy() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.ServerTlsPolicy }).(pulumi.StringOutput)
}
// URLs to SslCertificate resources that are used to authenticate connections between users and the load balancer. At least one SSL certificate must be specified. Currently, you may specify up to 15 SSL certificates. sslCertificates do not apply when the load balancing scheme is set to INTERNAL_SELF_MANAGED.
func (o LookupTargetHttpsProxyResultOutput) SslCertificates() pulumi.StringArrayOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) []string { return v.SslCertificates }).(pulumi.StringArrayOutput)
}
// URL of SslPolicy resource that will be associated with the TargetHttpsProxy resource. If not set, the TargetHttpsProxy resource has no SSL policy configured.
func (o LookupTargetHttpsProxyResultOutput) SslPolicy() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.SslPolicy }).(pulumi.StringOutput)
}
// A fully-qualified or valid partial URL to the UrlMap resource that defines the mapping from URL to the BackendService. For example, the following are all valid URLs for specifying a URL map: - https://www.googleapis.compute/v1/projects/project/global/urlMaps/ url-map - projects/project/global/urlMaps/url-map - global/urlMaps/url-map
func (o LookupTargetHttpsProxyResultOutput) UrlMap() pulumi.StringOutput {
return o.ApplyT(func(v LookupTargetHttpsProxyResult) string { return v.UrlMap }).(pulumi.StringOutput)
}
func init() {
pulumi.RegisterOutputType(LookupTargetHttpsProxyResultOutput{})
}